MEDIUM 5.5 NVD
CVE-2026-78171
A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/pro
A vulnerability has been found in itsourcecode Sales and Inventory System 1.0. Affected by this vulnerability is an unknown functionality of the file /pages/processlogin.php. The manipulation of the argument User leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
References
- https://github.com/MounT1veR/new/issues/1
- https://itsourcecode.com/
- https://vuldb.com/cve/CVE-2026-78171
- https://vuldb.com/submit/884109
- https://vuldb.com/vuln/394560
This medium severity vulnerability with a CVSS score of 5.5 was published on 2026-08-24 via NVD.
vulnfeed aggregates 10950 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.